Semantically Rich, Oblivious Access Control Using ABAC for Secure Cloud Storage

dc.contributor.authorJoshi, Maithilee P.
dc.contributor.authorMittal, Sudip
dc.contributor.authorJoshi, Karuna Pande
dc.contributor.authorFinin, Tim
dc.date.accessioned2018-10-19T13:17:05Z
dc.date.available2018-10-19T13:17:05Z
dc.date.issued2017-09-11
dc.description2017 IEEE International Conference on Edge Computing (EDGE)en_US
dc.description.abstractSecuring their critical documents on the cloud from data threats is a major challenge faced by organizations today. Controlling and limiting access to such documents requires a robust and trustworthy access control mechanism. In this paper, we propose a semantically rich access control system that employs an access broker module to evaluate access decisions based on rules generated using the organizations confidentiality policies. The proposed system analyzes the multi-valued attributes of the user making the request and the requested document that is stored on a cloud service platform, before making an access decision. Furthermore, our system guarantees an end-to-end oblivious data transaction between the organization and the cloud service provider using oblivious storage techniques. Thus, an organization can use our system to secure their documents as well as obscure their access pattern details from an untrusted cloud service provider.en_US
dc.description.sponsorshipThis research was supported by the Office of Naval Research under grants N00014-15-1-2228 and N00014-16-WX- 01489. We thank Dr. Seung Geol Choi (USNA), Dr. Adam Aviv (USNA), Dr. Daniel Roche (USNA) and members of the Ebiquity Research Group for their vital feedback.en_US
dc.description.urihttps://ieeexplore.ieee.org/document/8029268en_US
dc.format.extent8 pagesen_US
dc.genreconference paper pre-printen_US
dc.identifierdoi:10.13016/M2KP7TV9Z
dc.identifier.citationMaithilee Joshi, Karuna Joshi, Tim Finin, "Attribute Based Encryption for Secure Access to Cloud Based EHR Systems", Cloud Computing (CLOUD) 2018 IEEE 11th International Conference on, pp. 932-935, 2018, DOI: 10.1109/IEEE.EDGE.2017.27en_US
dc.identifier.uri10.1109/IEEE.EDGE.2017.27
dc.identifier.urihttp://hdl.handle.net/11603/11601
dc.language.isoen_USen_US
dc.publisherIEEEen_US
dc.relation.isAvailableAtThe University of Maryland, Baltimore County (UMBC)
dc.relation.ispartofUMBC Computer Science and Electrical Engineering Department Collection
dc.relation.ispartofUMBC Faculty Collection
dc.relation.ispartofUMBC Student Collection
dc.relation.ispartofUMBC Information Systems Department
dc.rightsThis item is likely protected under Title 17 of the U.S. Copyright Law. Unless on a Creative Commons license, for uses protected by Copyright Law, contact the copyright holder or the author.
dc.rights© 20XX IEEE
dc.subjectAccess Controlen_US
dc.subjectAccess Brokeren_US
dc.subjectOntologiesen_US
dc.subjectConfidentiality Policyen_US
dc.subjectOblivious Storageen_US
dc.subjectCloud Computingen_US
dc.subjectUMBC Ebiquity Research Groupen_US
dc.titleSemantically Rich, Oblivious Access Control Using ABAC for Secure Cloud Storageen_US
dc.typeTexten_US

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
845.pdf
Size:
707.95 KB
Format:
Adobe Portable Document Format
Description:

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.68 KB
Format:
Item-specific license agreed upon to submission
Description: